ShibbolethSP : Dynamic MetadataProviders list

Ian Young ian at iay.org.uk
Wed Aug 20 12:24:31 EDT 2014


On 20 Aug 2014, at 16:57, Paolo de vathaire <paolodv at free.fr> wrote:

> @John
> You might want to look at using the metadata aggregator (https://wiki.shibboleth.net/confluence/display/MA1/Home) to combine the individual metadata files into s single file wrapped with an <EntitiesDescriptor> tag.  That way, the SP only has to load one file.
> 
> I will take a look at it but the version is not yet final so it shouldn't be used in a production environment.

It's true that the current documentation does have such a warning on it. However, as Scott says, it is likely that the Shibboleth Metadata Aggregator will be "in development" and "not final" for some time to come. Despite that, it is in daily production use in many places, including several of the HE federations.

The Shibboleth MDA is the backbone of the UK federation's metadata tooling, for example, and has been for some years now. It's stable enough for production use, in my opinion. As I'm the person who built the UKf tooling and also the lead developer on the Shibboleth MDA, you may however consider me to be biased.

So, perhaps we should tone down the warning a little. The main concern I'd want to point out to potential users these days is that there's a bit of a learning cliff and that the APIs will change, sometimes dramatically, in each pre-1.0 release.

	-- Ian



-------------- next part --------------
An HTML attachment was scrubbed...
URL: http://shibboleth.net/pipermail/users/attachments/20140820/4bd40062/attachment.html 
-------------- next part --------------
A non-text attachment was scrubbed...
Name: smime.p7s
Type: application/pkcs7-signature
Size: 5943 bytes
Desc: not available
Url : http://shibboleth.net/pipermail/users/attachments/20140820/4bd40062/attachment.bin 


More information about the users mailing list